Close Menu
  • Home
  • Opinion
  • Region
    • Africa
    • Asia
    • Europe
    • Middle East
    • North America
    • Oceania
    • South America
  • AI & Machine Learning
  • Robotics & Automation
  • Space & Deep Tech
  • Web3 & Digital Economies
  • Climate & Sustainability Tech
  • Biotech & Future Health
  • Mobility & Smart Cities
  • Global Tech Pulse
  • Cybersecurity & Digital Rights
  • Future of Work & Education
  • Trend Radar & Startup Watch
  • Creator Economy & Culture
What's Hot

How One Machine Brings Classic Onerous Drive Sounds to Silent SSDs

April 5, 2026

Bristol approves EV charging infrastructure technique

April 5, 2026

Researchers Develop Tiny Quantum Battery That Prices Quicker When It Grows Bigger

April 5, 2026
Facebook X (Twitter) Instagram LinkedIn RSS
NextTech NewsNextTech News
Facebook X (Twitter) Instagram LinkedIn RSS
  • Home
  • Africa
  • Asia
  • Europe
  • Middle East
  • North America
  • Oceania
  • South America
  • Opinion
Trending
  • How One Machine Brings Classic Onerous Drive Sounds to Silent SSDs
  • Bristol approves EV charging infrastructure technique
  • Researchers Develop Tiny Quantum Battery That Prices Quicker When It Grows Bigger
  • XREAL Recordsdata for Hong Kong IPO, Targets Sensible Glasses Management
  • MassRobotics, Festo, Mitsubishi Electrical Automation, MITRE and Novanta Be part of Efforts to Help Healthcare Robotics Startups
  • Do the Moon’s Poles Maintain Much less Water Than We Thought?
  • Software program Growth Traits Each Staff Ought to Watch in 2026
  • RAKIA Achieves CMMC Degree 1 Compliance, Increasing Entry to U.S. Protection Contracts and Accelerating Federal Development Technique
Sunday, April 5
NextTech NewsNextTech News
Home - Cybersecurity & Digital Rights - Cisco Patches 9.8 CVSS IMC and SSM Flaws Permitting Distant System Compromise
Cybersecurity & Digital Rights

Cisco Patches 9.8 CVSS IMC and SSM Flaws Permitting Distant System Compromise

NextTechBy NextTechApril 5, 2026No Comments2 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email Copy Link
Follow Us
Google News Flipboard
Cisco Patches 9.8 CVSS IMC and SSM Flaws Permitting Distant System Compromise
Share
Facebook Twitter LinkedIn Pinterest Email


Ravie LakshmananApr 02, 2026Community Safety / Vulnerability

Cisco has launched updates to handle a important safety flaw within the Built-in Administration Controller (IMC) that, if efficiently exploited, might permit an unauthenticated, distant attacker to bypass authentication and achieve entry to the system with elevated privileges.

The vulnerability, tracked as CVE-2026-20093, carries a CVSS rating of 9.8 out of a most of 10.0.

“This vulnerability is because of incorrect dealing with of password change requests,” Cisco stated in an advisory launched Wednesday. “An attacker might exploit this vulnerability by sending a crafted HTTP request to an affected gadget.”

“A profitable exploit might permit the attacker to bypass authentication, alter the passwords of any person on the system, together with an Admin person, and achieve entry to the system as that person.”

Safety researcher “jyh” has been credited with discovering and reporting the vulnerability. The shortcoming impacts the next merchandise whatever the gadget configuration – 

  • 5000 Collection Enterprise Community Compute Programs (ENCS) – Fastened in 4.15.5
  • Catalyst 8300 Collection Edge uCPE – Fastened in 4.18.3
  • UCS C-Collection M5 and M6 Rack Servers in standalone mode – Fastened in 4.3(2.260007), 4.3(6.260017), and 6.0(1.250174)
  • UCS E-Collection Servers M3 – Fastened in 3.2.17
  • UCS E-Collection Servers M6 – Fastened in 4.15.3

One other important vulnerability patched by Cisco impacts Good Software program Supervisor On-Prem (SSM On-Prem), which might allow an unauthenticated, distant attacker to execute arbitrary instructions on the underlying working system. The vulnerability, CVE-2026-20160 (CVSS rating: 9.8), stems from an unintentional publicity of an inner service.

“An attacker might exploit this vulnerability by sending a crafted request to the API of the uncovered service,” Cisco stated. “A profitable exploit might permit the attacker to execute instructions on the underlying working system with root-level privileges.”

Patches for the flaw have been launched in Cisco SSM On-Prem model 9-202601. Cisco stated the vulnerability was found internally in the course of the decision of a Cisco Technical Help Heart (TAC) assist case.

Whereas neither of the vulnerabilities has been exploited within the wild, quantity of recentlydisclosed safety flaws in Cisco merchandise have been weaponized by risk actors. In the absence of a workaround, prospects are really useful to replace to the mounted model for optimum safety.

Elevate your perspective with NextTech Information, the place innovation meets perception.
Uncover the newest breakthroughs, get unique updates, and join with a world community of future-focused thinkers.
Unlock tomorrow’s developments immediately: learn extra, subscribe to our e-newsletter, and turn out to be a part of the NextTech group at NextTech-news.com

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
NextTech
  • Website

Related Posts

Fortinet Patches Actively Exploited CVE-2026-35616 in FortiClient EMS

April 5, 2026

New SparkCat Variant in iOS, Android Apps Steals Crypto Pockets Restoration Phrase Photos

April 4, 2026

Microsoft Particulars Cookie-Managed PHP Net Shells Persisting by way of Cron on Linux Servers

April 4, 2026
Add A Comment
Leave A Reply Cancel Reply

Economy News

How One Machine Brings Classic Onerous Drive Sounds to Silent SSDs

By NextTechApril 5, 2026

Nostalgia strikes anybody who spent hours looking at a pc display within the Nineties, when…

Bristol approves EV charging infrastructure technique

April 5, 2026

Researchers Develop Tiny Quantum Battery That Prices Quicker When It Grows Bigger

April 5, 2026
Top Trending

How One Machine Brings Classic Onerous Drive Sounds to Silent SSDs

By NextTechApril 5, 2026

Nostalgia strikes anybody who spent hours looking at a pc display within…

Bristol approves EV charging infrastructure technique

By NextTechApril 5, 2026

Analysis means that the long run EV charging demand in Bristol would…

Researchers Develop Tiny Quantum Battery That Prices Quicker When It Grows Bigger

By NextTechApril 5, 2026

Australian researchers have constructed the world’s first quantum battery that completes each…

Subscribe to News

Get the latest sports news from NewsSite about world, sports and politics.

NEXTTECH-LOGO
Facebook X (Twitter) Instagram YouTube

AI & Machine Learning

Robotics & Automation

Space & Deep Tech

Web3 & Digital Economies

Climate & Sustainability Tech

Biotech & Future Health

Mobility & Smart Cities

Global Tech Pulse

Cybersecurity & Digital Rights

Future of Work & Education

Creator Economy & Culture

Trend Radar & Startup Watch

News By Region

Africa

Asia

Europe

Middle East

North America

Oceania

South America

2025 © NextTech-News. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms Of Service
  • Advertise With Us
  • Write For Us
  • Submit Article & Press Release

Type above and press Enter to search. Press Esc to cancel.

Subscribe For Latest Updates

Sign up to best of Tech news, informed analysis and opinions on what matters to you.

Invalid email address
 We respect your inbox and never send spam. You can unsubscribe from our newsletter at any time.     
Thanks for subscribing!